Take2 Consulting, LLC is seeking a skilled Security Engineer to advance their DevSecOps practices within a cloud-native environment. This role involves developing and automating security tools and processes, managing cloud infrastructure, and ensuring compliance with industry and government standards.
Responsibilities:
- 2+ years of experience in the development of tools and processes to drive DevOps or DevSecOps maturity by automating builds, regression testing, monitoring, and pushing releases across environments
- Experience with developing, managing, and securing cloud-native solutions with a focus on containers in AWS
- Experience implementing, maintaining, and updating Infrastructure-as-Code solutions such as AWS CDK, AWS CloudFormation, or Terraform
- Experience with Command of Object-Oriented Programming fundamentals such as member fields, object instantiation, and inheritance
- Experience with AWS Security services such as GuardDuty, Macie, Detective, or Inspector
- Experience implementing a platform compliant with a body of standards such as FedRAMP Moderate, HITRUST, PCI DSS, or SOC2
- Experience automating tasks of multiple levels of complexity ranging from simple tasks on your workstation to elaborate tasks involving deploys and tasks of complex logic
- Experience using AI tooling to accelerate or streamline tasks
Requirements:
- A Bachelor's degree in a related technical field is required
- Ability to obtain and maintain a U.S. Secret security clearance, which requires U.S. citizenship
- 2+ years of experience in the development of tools and processes to drive DevOps or DevSecOps maturity by automating builds, regression testing, monitoring, and pushing releases across environments
- Experience with developing, managing, and securing cloud-native solutions with a focus on containers in AWS
- Experience implementing, maintaining, and updating Infrastructure-as-Code solutions such as AWS CDK, AWS CloudFormation, or Terraform
- Experience with Command of Object-Oriented Programming fundamentals such as member fields, object instantiation, and inheritance
- Experience with AWS Security services such as GuardDuty, Macie, Detective, or Inspector
- Experience implementing a platform compliant with a body of standards such as FedRAMP Moderate, HITRUST, PCI DSS, or SOC2
- Experience automating tasks of multiple levels of complexity ranging from simple tasks on your workstation to elaborate tasks involving deploys and tasks of complex logic
- Experience using AI tooling to accelerate or streamline tasks
- Experience with Kubernetes administration and application deployment paradigms
- Experience with AWS CDK
- Experience with TypeScript
- Experience with logging and organization-management AWS solutions such as CloudWatch, Identity Center, OpenSearch, and Organizations
- Experience executing on Governance, Risk, and Compliance (GRC) needs within the FedRAMP Moderate or PCI DSS v4.0 regulatory regimes
- Experience operating in a government-facing regulated environment with an Authorization to Operate (ATO)
- Experience triaging and resolving issues related to open source and commercial tools in public cloud environments
- Experience with keyboard engineering implementations
- Experience with Amazon Q
- Knowledge of scripting languages such as Python and BASH